H12-311_V3.0 · Question #146
In thin AP networking, which of the following authentication methods does not require AC participation in the authentication process?
The correct answer is A. Shared Key Authentication. Shared Key Authentication (WEP-based) operates entirely at the 802.11 link layer between the client and the AP itself, meaning the AP can complete the challenge-response handshake using its locally stored key without forwarding anything to the AC. The other three options all…
Question
In thin AP networking, which of the following authentication methods does not require AC participation in the authentication process?
Options
- AShared Key Authentication
- B802.1X authentication
- CPSK authentication
- DPortal authentication
How the community answered
(27 responses)- A70% (19)
- B11% (3)
- C4% (1)
- D15% (4)
Explanation
Shared Key Authentication (WEP-based) operates entirely at the 802.11 link layer between the client and the AP itself, meaning the AP can complete the challenge-response handshake using its locally stored key without forwarding anything to the AC. The other three options all require AC involvement: 802.1X requires the AC to act as an authenticator or RADIUS proxy, relaying EAP messages between the client and the authentication server; PSK authentication in a thin AP environment requires the AC to perform the four-way handshake validation since thin APs offload security processing to the controller; and Portal (captive portal) authentication requires the AC to intercept HTTP traffic, redirect users to the login page, and authorize access after credentials are verified.
Memory tip: Shared Key Authentication predates the thin AP/controller architecture entirely - it was designed for standalone APs and works the same way with or without a controller, which is exactly why the AC has nothing to do with it.
Topics
Community Discussion
No community discussion yet for this question.